PT-2024-14195 · Metagauss · Registrationmagic

Brandon Roldan

·

Published

2024-06-04

·

Updated

2024-06-04

·

CVE-2023-51543

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions Metagauss RegistrationMagic versions 5.2.5.0 and earlier
Description The issue is related to an Authentication Bypass by Spoofing vulnerability in the RegistrationMagic functionality of Metagauss. This vulnerability allows accessing functionality not properly constrained by Access Control Lists (ACLs).
Recommendations For Metagauss RegistrationMagic versions 5.2.5.0 and earlier, update to a version later than 5.2.5.0 to resolve the issue.

Fix

Authentication Bypass by Spoofing

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2023-51543

Affected Products

Registrationmagic